Microsoft 70-697 - Configuring Windows Devices Exam

Question #11 (Topic: Manage Identity)
You administer Windows 10 Enterprise client computers that are members of an Active Directory domain that includes Active Directory Certificate Services (AD
CS).
You restored a computer from a backup that was taken 45 days ago. Users are no longer able to log on to that computer by using their domain accounts. An error
message states that the trust relationship between the computer and the primary domain has failed.
What should you do?
A. Renew the certificates issued to the client computer. B. Reset the passwords of all affected domain users. C. Logon as a local administrator and issue the netdom resetpwd command. Log off and restart the computer. D. Restore the client computer from a known good backup that was taken two weeks earlier than the backup you previously restored.
Answer: C
Question #12 (Topic: Manage Identity)
DRAG DROP
You have a computer named Client1 that runs Windows 10 Enterprise. Client1 is a member of an Active Directory domain.
A domain administrator provisions a certificate template for a virtual smart card logon.
In the BIOS of Client1, you enable the Trusted Platform Module (TPM).
You need to enable the virtual smart card logon on Client1.
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the
correct order.
Select and Place:
[Microsoft-70-697-1.0/xmlfile-16_1.jpg]
Answer: [Microsoft-70-697-1.0/xmlfile-16_2.jpg]
Question #13 (Topic: Manage Identity)
You have an on-premises Active Directory domain and a Microsoft Azure Active Directory. You have a Microsoft Intune subscription that is linked to the Azure
Active Directory.
You configure directory synchronization between the on-premises Active Directory and the Azure Active Directory. You import 100 users into the Azure Active
Directory.
Users report that they are unable to sigh in to Microsoft Intune. You confirm that each user has a valid Active Directory account and password.
You open the Microsoft Intune Console and see the configuration of User1 as shown in the exhibit. (Click the Exhibit button.)
[Microsoft-70-697-1.0/xmlfile-17_1.png]
You need to ensure that the users can sign in to Microsoft Intune.
What should you do first?
A. Activate the synchronized user accounts. B. Purchase an Enterprise Mobility Suite subscription. C. Configure Microsoft Intune for single sign-on. D. Create a new Security Group in Microsoft Intune named Domain Intune Users.
Answer: A
Question #14 (Topic: Manage Identity)
Your network contains an Active Directory domain named contoso.com. All client computers run Windows 10 Enterprise and Microsoft Office 2013. All of the
computers are joined to the domain.
Your company purchases a subscription to Office 365. An administrator creates an Office 365 account for each user and deploys a federated solution for Office
365.
You need to prevent the users from being prompted for a user account and a password each time they access services from Office 365.
Which account should you instruct the users to use when they sign in to their computer?
A. a Microsoft account B. a local user account C. an Office 365 account D. a contoso.com account
Answer: D
Question #15 (Topic: Manage Identity)
A company has an Active Directory Domain Services (AD DS) domain. All client computers run Windows 10 Enterprise and are joined to the domain.
Corporate police prohibits Homegroups on the corporate network.
You need to ensure that client computer network adapter settings do not support joining a Homegroup.
What should you do?
A. Disable IPv6. B. Disable IPv4. C. Enable IPv6. D. Enable IPv4. A
Answer: Explanation
Download Exam
Page: 3 / 66
Total 330 questions